피드 구독

As more and more organizations adopt cloud-native technologies, being able to leverage multiple cloud environments is becoming increasingly important. As such, being able to achieve cohesive security positions across those environments is equally important. Through close collaboration with Paladin Cloud, and by leveraging the strengths of Red Hat Advanced Cluster Security and Paladin Cloud's extensive Cloud Security Posture Management, the collaboration has yielded a solution that bridges the gap between multi and hybrid cloud environments across infrastructure and Kubernetes that delivers a unified platform tailored to managing cloud security risks more effectively. 

Power through collaboration

Red Hat Advanced Cluster Security delivers Kubernetes-native security capabilities across environments and Kubernetes platforms, including support for Amazon EKS, Google GKE, Microsoft AKS and Red Hat OpenShift. Red Hat Advanced Cluster Security helps users to manage vulnerabilities by identifying and fixing vulnerabilities in both container images and Kubernetes across the entire software development lifecycle. It also enables users to adhere to compliance standards by auditing your systems against CIS Benchmarks, NIST, PCI, and HIPAA, with interactive dashboards and one-click audit reports, allowing you to see all your deployments ranked by risk level, using context from Kubernetes’ declarative data to prioritize remediation.

With Red Hat Advanced Cluster Security you can also visualize existing vs. allowed network traffic and enforce network policies and tighter segmentation using Kubernetes-native controls. Using our Configuration Management feature, you can apply best practices to harden your Kubernetes environments and workloads for a security-focused, more stable application. Additionally, you can use rules, allowlists, and baselining to identify suspicious activity to take action to thwart attacks, using Kubernetes for enforcement.

But what about the underlying infrastructure? This is where Red Hat's collaboration with Paladin Cloud comes in. By identifying the multi and hybrid cloud assets, along with the Kubernetes deployments via the Red Hat Advanced Cluster Security plugin, Paladin Cloud's Cloud Security Posture Management helps further secure the underlying infrastructure where Kubernetes workloads run.

Connecting Red Hat Advanced Cluster Security with Paladin Cloud

Connecting is simple. Here's a step-by-step guide:

1. Prerequisites

Screenshot of Red Hat Plugin Configuration details page
  • In Paladin Cloud, go to the plugin page under Admin (You will need Admin permissions)
  • Choose Add Plugin and select the Red Hat Advanced Cluster Security plugin.
  • This will give you the latest instructions to configure the account.

2. Retrieve your Red Hat Advanced Cluster Security instance ID

  • Log in to the Red Hat Console.
  • Access the ACS Instance page by selecting `Advanced Security Cluster` in the side menu. Click on the ACS instance you want to link with Paladin Cloud.
  • Copy the `ID` from the `Instance Details` card inside the chosen Red Hat Advanced Cluster Security instance.
Screenshot of acspc-demo details page
  • Switch to the Paladin Cloud application, and hit next to go to the Add Details page. Paste in the copied `ID` into the `ID Field`.

3. Setup an authentication token

  • Return to the Red Hat Advanced Cluster Security Instance page and click the “Open ACS Console” button.
  • Access Platform Configuration from the side menu and choose the 'Integrations' option.
  • Scroll down to the 'Authentication Tokens' section.
Screenshot of Authentication Tokens section
  • Select 'API Token'. You'll be taken to the 'Integration API Tokens' page, which lists previously generated tokens (if any).
  • Click the 'Generate Token' button.
  • Name the token and choose the Analyst role.
Screenshot of selecting the Analyst role
  • Copy and paste the generated token into the token input field within the Red Hat Plugin in the Paladin Cloud application.

IMPORTANT: Be sure to store the copied token safely. Once generated, it won't be visible again for security reasons.

4. Validate the configuration

  • Hit the 'Validate' button to confirm the setup was successful. If so, this will add the plugin to Paladin Cloud.
  • If you get a success message, you should see data begin to populate within 30 minutes.
  • Go to the Asset Group Selector and choose Red Hat to see a dashboard on your OpenShift assets. 
  • You can view your Kubernetes deployments and the risks Red Hat Advanced Cluster Security has identified. 
  • For any Advanced Cluster Security violations, you can click through the corresponding link to go directly to that finding in Advanced Cluster Security for further details on risk and steps on remediation.
Screenshot of Violation Details page on Paladin Cloud

Moving forward

By leveraging our partner ecosystem  we continue to be able to offer increased choice and flexibility providing our customers the  best, enterprise-grade, open source solutions to meet their needs. Our collaboration with Paladin Cloud is continuous and we have more integrations planned for the future.

  • For more information on Red Hat Advanced Cluster Security, please click here.
  • For more information on Paladin Cloud, please click here

저자 소개

Sean Rickerd, a distinguished professional in the technology and security domain, seamlessly blends his extensive career journey with a commitment to excellence. From his early days at SUSE to his current role as Principal Technical Marketing Manager at Red Hat, Sean's writing reflects a dedication to continuous learning. With a focus on authoring about cutting-edge fields like DevSecOps and Kubernetes security, he stands at the forefront of driving innovation and elevating security practices.

Read full bio
UI_Icon-Red_Hat-Close-A-Black-RGB

채널별 검색

automation icon

오토메이션

기술, 팀, 인프라를 위한 IT 자동화 최신 동향

AI icon

인공지능

고객이 어디서나 AI 워크로드를 실행할 수 있도록 지원하는 플랫폼 업데이트

open hybrid cloud icon

오픈 하이브리드 클라우드

하이브리드 클라우드로 더욱 유연한 미래를 구축하는 방법을 알아보세요

security icon

보안

환경과 기술 전반에 걸쳐 리스크를 감소하는 방법에 대한 최신 정보

edge icon

엣지 컴퓨팅

엣지에서의 운영을 단순화하는 플랫폼 업데이트

Infrastructure icon

인프라

세계적으로 인정받은 기업용 Linux 플랫폼에 대한 최신 정보

application development icon

애플리케이션

복잡한 애플리케이션에 대한 솔루션 더 보기

Original series icon

오리지널 쇼

엔터프라이즈 기술 분야의 제작자와 리더가 전하는 흥미로운 스토리